CVE-2020-11793: Use After Free
A use-after-free issue exists in WebKitGTK before 2.28.1 and WPE WebKit before 2.28.1 via crafted web content that allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash).
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-11793?
CVE-2020-11793 is a use-after-free vulnerability in WebKitGTK and WPE WebKit that allows remote attackers to execute arbitrary code or cause a denial of service.
What software is affected by CVE-2020-11793?
CVE-2020-11793 affects WebKitGTK before version 2.28.1 and WPE WebKit before version 2.28.1.
How severe is CVE-2020-11793?
CVE-2020-11793 has a severity score of 8.8, which is considered high.
How can I fix CVE-2020-11793?
To fix CVE-2020-11793, you should update WebKitGTK to version 2.28.1 or later.
Where can I find more information about CVE-2020-11793?
You can find more information about CVE-2020-11793 on the MITRE CVE website, the WebKitGTK security advisory, and the Ubuntu Security Notice.